[Git][security-tracker-team/security-tracker][master] initial wireshark triage

Moritz Muehlenhoff jmm at debian.org
Wed May 23 16:44:33 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
68481298 by Moritz Muehlenhoff at 2018-05-23T17:43:50+02:00
initial wireshark triage

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -119,7 +119,9 @@ CVE-2018-11360 (In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the GSM
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=a55b36c51f83a7b9680824e8ee3a6ce8429ab24b
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-30.html
 CVE-2018-11359 (In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the RRC ...)
-	- wireshark <unfixed>
+	- wireshark <unfixed> (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14703
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=beaebe91b14564fb9f86f0726bab09927872721b
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-33.html
@@ -129,12 +131,16 @@ CVE-2018-11358 (In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the Q.9
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=ccb1ac3c8cec47fbbbf2e80ced80644005c65252
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-31.html
 CVE-2018-11357 (In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the LTP ...)
-	- wireshark <unfixed>
+	- wireshark <unfixed> (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14678
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=ab8a33ef083b9732c89117747a83a905a676faf6
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-28.html
 CVE-2018-11356 (In Wireshark 2.6.0, 2.4.0 to 2.4.6, and 2.2.0 to 2.2.14, the DNS ...)
-	- wireshark <unfixed>
+	- wireshark <unfixed> (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14681
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=4425716ddba99374749bd033d9bc0f4add2fb973
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-29.html
@@ -5074,32 +5080,44 @@ CVE-2018-9273 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=1f8f1456f1e73b6c09e50a64749e43413ac12df7
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9272 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14487
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=6e3b90824a82724f445a0374e99f0b76e4cf5e8b
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9271 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14486
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=5b0228945dc74ee82d2ab4a4e7af2bdfe7b75910
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9270 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, epan/oids.c has a ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14485
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=0fbc50f9b9219be54d6db47f04b65af19696a7c7
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9269 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14484
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=e19aba33026212cbe000ece633adf14d109489fa
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9268 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14483
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=c69d710d2bf39fe633800db65efddf55701131b6
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9267 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14482
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=8ed057f7faa709dbde34b91f0715a957837f74d9
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
@@ -5111,7 +5129,9 @@ CVE-2018-9266 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=9d3714e767cb104dcfa1647935fa5960b16bb8e1
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
 CVE-2018-9265 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14480
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=b12cc581cd4878d74b6116ca02c7dbe650c1f242
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-24.html
@@ -5121,12 +5141,16 @@ CVE-2018-9264 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the ADB dissecto
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=0290a62be0fca8da9bb190f59dc1fe26c1d65024
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-16.html
 CVE-2018-9263 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the Kerberos dissector ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14576
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=4fe65168fd0de81306710330aa414f10f53cbdf0
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-23.html
 CVE-2018-9262 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the VLAN dissector ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14469
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=f05c3b91f9571210b86576ee6284e71a3306109d
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-19.html
@@ -5141,7 +5165,9 @@ CVE-2018-9260 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the IEEE 802.15.
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=14d6f717d8ea27688af48532edb1d29f502ea8f0
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-17.html
 CVE-2018-9259 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the MP4 dissector ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13777
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2113179835b37549f245ac7c05ff2b96276893e4
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-15.html
@@ -5151,12 +5177,16 @@ CVE-2018-9258 (In Wireshark 2.4.0 to 2.4.5, the TCP dissector could crash. This 
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=2d4695de1477df60b0188fd581c0c279db601978
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-21.html
 CVE-2018-9257 (In Wireshark 2.4.0 to 2.4.5, the CQL dissector could go into an ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14530
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=d7a9501b0439a5dbf24016a95b4896170d789dc2
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-22.html
 CVE-2018-9256 (In Wireshark 2.4.0 to 2.4.5 and 2.2.0 to 2.2.13, the LWAPP dissector ...)
-	- wireshark 2.4.6-1
+	- wireshark 2.4.6-1 (low)
+	[stretch] - wireshark <no-dsa> (Minor issue)
+	[jessie] - wireshark <no-dsa> (Minor issue)
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14467
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=dac48f148538c706c446e5105d84ebcb54587528
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2018-20.html



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/684812983f9b16ea08731d4ff76098ec6f134d1e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/684812983f9b16ea08731d4ff76098ec6f134d1e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180523/29458140/attachment.html>


More information about the debian-security-tracker-commits mailing list